Skip to content

Commit d6bb96c

Browse files
Update docs/security/infrastructure.md
1 parent 4bc4bc7 commit d6bb96c

File tree

1 file changed

+6
-6
lines changed

1 file changed

+6
-6
lines changed

docs/security/infrastructure.md

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -12,12 +12,12 @@ The monitoring infrastructure was developed both in-house, and by vendors as nee
1212

1313
Specific requirements are followed by any Polygon Labs employee that is a signer on a corporate multisig contract. Multisig contacts are corporate-owned and control treasury assets or smart contract deployments. They consist of Safes (previously Gnosis Safes) and other smart contract multisig implementations. Hardware wallets are hardware-based cold storage, such as Trezor or Ledger devices that store private keys and enable signing multisig transactions offline. Signer multisig requirement include:
1414

15-
- Hardware wallet: Polygon requires cold storage from an accepted vendor dedicated for company official use only and secured by a PIN
16-
- Hot wallets: Hot wallets are not allowed for use on Polygon multisigs
17-
- Corporate workstation: Signing must be performed from a company system managed by our enterprise mobile device management (MDM) platform complete with anti-virus (AV) and endpoint detection and device (EDR)
18-
- Clean key: All signers are required to create a clean key that has never been exposed to a hot wallet
19-
- Mnemonic storage: Polygon mandates safe storage of mnemonic passphrases and provides guidance to its employees
20-
- Secure communication: All multisig signing events are coordinated using Polygon’s accepted communication protocols for multisigs
15+
- Hardware wallet: Polygon requires cold storage from an accepted vendor dedicated for company official use only and secured by a PIN.
16+
- Hot wallets: Hot wallets are not allowed for use on Polygon multisigs.
17+
- Corporate workstation: Signing must be performed from a company system managed by our enterprise mobile device management (MDM) platform complete with anti-virus (AV) and endpoint detection and device (EDR).
18+
- Clean key: All signers are required to create a clean key that has never been exposed to a hot wallet.
19+
- Mnemonic storage: Polygon mandates safe storage of mnemonic passphrases and provides guidance to its employees.
20+
- Secure communication: All multisig signing events are coordinated using Polygon’s accepted communication protocols for multisigs.
2121

2222
**All corporate multisigs are monitored 24/7 by the Polygon security team.**
2323

0 commit comments

Comments
 (0)